cancelar
Mostrando los resultados de 
Buscar en lugar de 
Quiere decir: 
cancel
203
Visitas
0
ÚTIL
1
Respuestas

security breach notification

AnaGRojas
Level 1
Level 1

Hello, good morning, several months ago, I got this message 

%PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address 0001.0100.00c1 on port GigabitEthernet2/0/11.
%PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address 4241.0454.94e2 on port GigabitEthernet2/0/11.
%PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address f661.b8c2.f69e on port GigabitEthernet2/0/11.
%PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address 0000.0000.0001 on port GigabitEthernet2/0/11.
%PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address 0001.0100.0000 on port GigabitEthernet2/0/11.
 %PORT_SECURITY-2-PSECURE_VIOLATION: Security violation occurred, caused by MAC address 0000.0000.06c3 on port GigabitEthernet2/0/11.

The message comes from different Macs that are not related to the ones saved on the stick.

this is the secure port configuration:

switchport access vlan 7
switchport mode access
switchport voice vlan 17
switchport port-security maximum 2
switchport port-security maximum 1 vlan access
switchport port-security maximum 1 vlan voice
switchport port-security violation restrict
switchport port-security mac-address sticky
switchport port-security mac-address sticky xxxx.xxxx.xxxx
switchport port-security mac-address sticky xxxx.xxxx.xxxx vlan voice
switchport port-security
spanning-tree portfast
spanning-tree bpduguard enable

These are the port security parameters:

Port Security : Enabled
Port Status : Secure-up
Violation Mode : Restrict
Aging Time : 0 mins
Aging Type : Absolute
SecureStatic Address Aging : Disabled
Maximum MAC Addresses : 2
Total MAC Addresses : 2
Configured MAC Addresses : 0
Sticky MAC Addresses : 2
Last Source Address:Vlan : xxxx.xxxx.xxxx:17
Security Violation Count : 1799

and the count of security violations increases every minute, I don't understand why it increases in some ports and not in others.

I greatly appreciate your help and willingness.

1 RESPUESTA 1

Jose Suarez
Level 1
Level 1

Hello Ana,

Try to change the maximum to 3. This problem has been discussed in other threads.

switchport port-security maximum 3.

Regards

Jose Suarez
CCIE No. 66421

.